VDB
CVE-2021-46671
CVE-2021-46671
PUBLISHED
CVSS 5 MEDIUM
options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.
EPSS 1.36% · 69.7th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
1.36%
69.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| debian | debian_linux | 9.0, 10.0, 11.0 |
| n/a | n/a | n/a |
| atftp_project | atftp | 0 |
Timeline
- Feb 4, 2022 CVE Published
- Feb 8, 2022 EPSS Score
- Apr 2, 2022 EPSS Score
- May 24, 2022 EPSS Score
- Jul 17, 2022 EPSS Score
- Sep 7, 2022 EPSS Score
- Oct 30, 2022 EPSS Score
- Dec 22, 2022 EPSS Score
- Feb 12, 2023 EPSS Score
- Apr 6, 2023 EPSS Score
- May 29, 2023 EPSS Score
- Jul 20, 2023 EPSS Score